Hiding malware in Windows – The basics of code injection
https://prdeving.wordpress.com/2018/09/21/hiding-malware-in-windows-code-injection/
https://prdeving.wordpress.com/2018/09/21/hiding-malware-in-windows-code-injection/
Lateral Movement and Persistence: tactics vs techniques
http://www.hexacorn.com/blog/2018/10/05/lateral-movement-and-persistence-tactics-vs-techniques/
http://www.hexacorn.com/blog/2018/10/05/lateral-movement-and-persistence-tactics-vs-techniques/
A list of files / paths to probe when arbitrary files can be read on a Microsoft Windows operating system
https://github.com/soffensive/windowsblindread
https://github.com/soffensive/windowsblindread
GitHub
GitHub - soffensive/windowsblindread: A list of files / paths to probe when arbitrary files can be read on a Microsoft Windows…
A list of files / paths to probe when arbitrary files can be read on a Microsoft Windows operating system - soffensive/windowsblindread
just because you can put anything in containers
doesn't mean you should put everything in containers
doesn't mean you should put everything in containers
parse #formbook PCAPs containing HTTP requests to C&C.extracting: * Beaconing requests * Intercepted HTML forms * Password Recoveries * Clipboard data * Screenshot
https://bit.ly/2Czyy8c
https://bit.ly/2Czyy8c
Active Directory Assessment and Privilege Escalation Script
https://github.com/hausec/ADAPE-Script/tree/master
https://github.com/hausec/ADAPE-Script/tree/master
pypykatz
Mimikatz implementation in pure Python. -offline minidump parsing currently-
Runs on all OS's which support python>=3.6
https://github.com/skelsec/pypykatz
Mimikatz implementation in pure Python. -offline minidump parsing currently-
Runs on all OS's which support python>=3.6
https://github.com/skelsec/pypykatz
GitHub
GitHub - skelsec/pypykatz: Mimikatz implementation in pure Python
Mimikatz implementation in pure Python. Contribute to skelsec/pypykatz development by creating an account on GitHub.